6.9

CVSS4.0

CVE-2025-2201 - Broken access control vulnerability in the Innovación y Cualificación IcProgreso plugin

Broken access control vulnerability in the IcProgress Innovación y Cualificación plugin. This vulnerability allows an attacker to obtain sensitive information about other users such as public IP addresses, messages with other users and more.

📅 Published: March 17, 2025, 10:13 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

9.3

CVSS4.0

CVE-2025-2200 - SQL injection vulnerability in the Innovación y Cualificación IcProgreso plugin

SQL injection vulnerability in the IcProgreso Innovación y Cualificación plugin. This vulnerability allows an attacker to obtain, update and delete data from the database by injecting an SQL query on the parameters user, id, idGroup, start_date and end_date in the endpoint /report/icprogreso/genera…

📅 Published: March 17, 2025, 10:09 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

9.3

CVSS4.0

CVE-2025-2199 - SQL injection vulnerability in the Innovación y Cualificación local administration plugin ajax.php

SQL injection vulnerability in the Innovación y Cualificación local administration plugin ajax.php. This vulnerability allows an attacker to obtain, update and delete data from the database by injecting an SQL query in ‘searchActionsToUpdate’, ‘searchSpecialitiesPending’, ‘searchSpecialitiesLinked’…

📅 Published: March 17, 2025, 10:09 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

6.9

CVSS4.0

CVE-2025-2372 - PHPGurukul Human Metapneumovirus Testing Management System Password Recovery Page password-recovery…

A vulnerability classified as critical has been found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. This affects an unknown part of the file /password-recovery.php of the component Password Recovery Page. The manipulation of the argument username leads to sql injection. It is p…

📅 Published: March 17, 2025, 10 a.m. 🔄 Last Modified: May 8, 2025, 7:04 p.m.

5.1

CVSS4.0

CVE-2025-2371 - PHPGurukul Human Metapneumovirus Testing Management System Registered Mobile Number Search register…

A vulnerability was found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /registered-user-testing.php of the component Registered Mobile Number Search. The manipulation of the argu…

📅 Published: March 17, 2025, 9:31 a.m. 🔄 Last Modified: May 8, 2025, 7:04 p.m.

0.0

CVE-2025-2400 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

📅 Published: March 17, 2025, 9:30 a.m. 🔄 Last Modified: April 16, 2025, 11:15 p.m.

8.6

CVSS4.0

CVE-2024-12992 - Remote Code Execution leads to Command Injection

Improper Neutralization of Special Elements used in a Command vulnerability allows OS Command Injection via RCE. This issue affects Pandora FMS from 700 to 777.6 .

📅 Published: March 17, 2025, 9:21 a.m. 🔄 Last Modified: Sept. 16, 2025, 3:53 p.m.

8.6

CVSS4.0

CVE-2024-12971 - QuickShell Authenticated Command Injection

Improper Neutralization of Special Elements used in a Command vulnerability allows OS Command Injection.This issue affects Pandora FMS from 700 to 777.6

📅 Published: March 17, 2025, 9:19 a.m. 🔄 Last Modified: Sept. 16, 2025, 3:55 p.m.

8.7

CVSS4.0

CVE-2025-2370 - TOTOLINK EX1800T cstecgi.cgi setWiFiExtenderConfig stack-based overflow

A vulnerability was found in TOTOLINK EX1800T up to 9.1.0cu.2112_B20220316. It has been declared as critical. Affected by this vulnerability is the function setWiFiExtenderConfig of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument apcliSsid leads to stack-based buffer overflow. The a…

📅 Published: March 17, 2025, 9 a.m. 🔄 Last Modified: April 7, 2025, 8:43 p.m.

8.7

CVSS4.0

CVE-2025-2369 - TOTOLINK EX1800T cstecgi.cgi setPasswordCfg stack-based overflow

A vulnerability was found in TOTOLINK EX1800T up to 9.1.0cu.2112_B20220316. It has been classified as critical. Affected is the function setPasswordCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument admpass leads to stack-based buffer overflow. It is possible to launch the attac…

📅 Published: March 17, 2025, 8:31 a.m. 🔄 Last Modified: April 7, 2025, 8:47 p.m.
Total resulsts: 347728
Page 6180 of 34,773
« previous page » next page
Filters